Blogs

Integrate TheHive and Cortex

This is part 7 of the TheHive/Cortex/MISP build. In this part I’m integrating TheHive with Cortex. This is where the real magic happens! Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex

Continue reading

Setup Reverse Proxy for Cortex

This is part 6 of the Cortex build. In this part I’ll add, configure and test out an analyser. Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex Part VII - Integrate TheHive and Cortex

Continue reading

Adding analysers to Cortex

This is part 5 of the Cortex build. In this part I’ll add, configure and test out an analysers. Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex Part VII - Integrate TheHive and Cortex

Continue reading

Building Cortex

This is part 4 of TheHive/Cortex/MISP build. In this part were standing up Cortex. Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex Part VII - Integrate TheHive and Cortex Part VIII - Integrate MISP to TheHive

Continue reading

Documentation as Code

The older I get the more I have come to despise Microsoft Word for technical documentation. In my world, documentation requires constant updates and periodic review and revision and when things go bad in Word which invariably happens, it goes really bad. Throw in multiple editors and multiple revisions over time and you usually end up with something that starts to lose its formatting over time and when your heading structure and auto-numbering breaks, well then all bets are off and sometimes your better off to spend the time and rewrite it.

Continue reading

TCG Storage

So ive been collecting Pokemon since late 2016 now and during this time ive accumulated close to 2,000 cards. All the bulk is pretty much given away or stored in a not so cared for way. From the start ive sleeved the cards and then kept them in deck boxes, then another deck box, a larger deck box and so on all the way up to my current predicament, so I’ve been through various iterations of how to store these cards up to today.

Continue reading

Upgrading TheHive 3.2.1_1 to 3.4

Its upgrading time! Its been a while since ive visited TheHive and version 3.4.0 has been released. The astute reader will noticed that when I originally stood up my instance of TheHive I opted for version 3.3.1 and yes, that will be getting an upgrade, but the reason for this post is that this is a test run for the instance upgrade at work and thats what were using, so thats what im testing about.

Continue reading

Fail2ban Setup

Fail2Ban is a great piece of software to keep those who would try (and fail) to access your services. It’s easy to setup as well, and can be as complicated as you want. Firstly perform the install by using this command. This will perform the install and create a service so that when you reboot, fail2ban will automatically start. sudo apt install fail2ban The configuration I am going to be performing will be for sshd, however there are stacks of pre-configured jails that can be used, and if it doesn’t have a pre-canned option, if your app has a log file file, then it can be customised accordingly.

Continue reading

Part VIII Pokemon Value Over the Long Term

This is going to be a long series of posts over time. Links for quick reference can be found here: November 2018:Part I, Part II, Part III, Part IV December 2018:Part V January 2019:Part VI February 2019:Part VII September 2019:Part VIII October 2019: Part IX So the last time I talked about the progress of the Celestial Storm booster box was back in Feb 2019 and now we are around the 12 month mark since its release and there has been a fairly steady increase in value.

Continue reading

Too Much Time Has Passed

OK - so way too much time has passed since ive updated this blog. Way too much time. I guess its easy to become so bogged down with home life, study and work and ive had a bit on my plate of recent. In all this time that has passed sadly I feel like I don’t have much to show for it. On the work front, I’m nearly 6 months into a job i’m really loving, working with great people, awesome tech and a heaps to learn.

Continue reading

Building MISP

This is part 3 of TheHive/Cortex/MISP build. In this part were installing MISP. Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex Part VII - Integrate TheHive and Cortex Part VIII - Integrate MISP to TheHive

Continue reading

Setup Reverse Proxy for TheHive

This is part 2 of TheHive/Cortex/MISP build. In this part I’ll add a reverse proxy to TheHive. Links to the previous articles are here: Part I - Building TheHive Part II - Setup reverse proxy for TheHive Part III - Building MISP Part IV - Building Cortex Part V - Adding analyzers to Cortex Part VI - Setup reverse proxy for Cortex Part VII - Integrate TheHive and Cortex

Continue reading